2024-05-25 21:48:12 +02:00
### [CVE-2023-51210](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-51210)



### Description
SQL injection vulnerability in Webkul Bundle Product 6.0.1 allows a remote attacker to execute arbitrary code via the id_product parameters in the UpdateProductQuantity function.
### POC
#### Reference
- https://medium.com/@nasir .synack/uncovering-critical-vulnerability-cve-2023-51210-in-prestashop-plugin-bundle-product-pack-ad7fb08bdc91
2024-06-09 00:33:16 +00:00
- https://medium.com/@nasir .synack/uncovering-critical-vulnerability-cve-2023-51210-in-prestashop-plugin-bundle-product-pack-ad7fb08bdc91
2024-05-25 21:48:12 +02:00
#### Github
No PoCs found on GitHub currently.